XSS

Cross-Site Scripting, Content Security Policy, DOM Security, Input Sanitization

Feeds to Scour
SubscribedAll
Scoured 108 posts in 5.9 ms

Hidden Security Risks in Modern JavaScript Frameworks

 🔐Web Application Security  Content type: Blog
talent500.com·

Patner Case Study | Pax8

 🗂️Zettelkasten

Trump DOJ to denaturalize 17 US citizens in rare move

 🔒Digital Privacy  Content type: News
dw.com·

mondi04/htmforge: Type-safe, composable HTML components for Python. Server-side rendered, HTMX-first, framework-agnostic — no templates, no string formatting, no XSS surprises.

 🔐Web Application Security  Content type: Code
github.com··r/SideProject

Personal apps with no back end: static site and OAuth PKCE and OpenRouter

 🔐OAuth 2.0
type2fun.net··Hacker News

Report the Floor: A Training-Free Conformal Interval Is a Mandatory Baseline for Probabilistic Time-Series Forecasting

 🎮Reinforcement Learning  Content type: Academic
arxiv.org·

Spring Framework 7.0.8 and 6.2.19 Available Now

 🔒Security  Content type: Blog
spring.io·

SAST vs SCA: Key Differences for AppSec Teams

 🔒Security
orca.security·

Scala 3.8.4 is now available!

 🔐Web Application Security
scala-lang.org·

Adobe Patches 123 Vulnerabilities

 🔐Web Application Security
securityweek.com·

Alleged DUI crash on CO-115 sends multiple to hospital, causes lengthy delays

 🚨Incident Response
krdo.com·

Show HN: We post-trained a model that pen tests instead of refusing your code

 🔗ssrf

From prompt to pwned: chaining LLM and web bugs to Admin

 🛡️AI Security  Content type: Blog
blog.quarkslab.com·

Ask HN: Do you install other people agent skills?

 🔐Web Application Security  Content type: Discussion

Secure Code Review Using AI without burning tokens

 📋OWASP Top 10  Content type: Blog
medium.com·

ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New Stories

 🔗ssrf
thehackernews.com·

FluidifyAI/Regen: Open-source incident management Alerts, on-call, AI post-mortems. Self-hosted alternative to PagerDuty & incident.io. Works with Prometheus, Grafana, Datadog, Slack, and Teams. Free forever, BYO-AI.

 🔧DevOps  Content type: Code
github.com··r/SideProject

Major Chase Sapphire Preferred Card Changes Unveiled: They’re A Mixed Bag

 Time Management
onemileatatime.com·

Token-Mediating Back end: An alternative to the BFF architecture

 🔐OAuth 2.0  Content type: Blog
fusionauth.io··Hacker News

Score-based diffusion models for accurate crystal-structure inpainting and reconstruction of hydrogen positions

 🎮Reinforcement Learning  Content type: Academic
nature.com·

Keyboard Shortcuts

Navigation

Next / previous item
j/k
Open post
oorEnter
Preview post
v

Post Actions

Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s

Recommendations

Add interest / feed
Enter
Not interested
x

Go to

Home
gh
Interests
gi
Feeds
gf
Likes
gl
History
gy
Changelog
gc
Settings
gs
Browse
gb
Search
/

General

Show this help
?
Submit feedback
!
Close modal / unfocus
Esc

Press ? anytime to show this help